V I R T U A L P R I V A T E N E T W O R K S
Configuring Internet Key Exchange
7-24
Security Appliance User Guide
Version 3R2
7
Tunnel VPN From: SF
E X A M P L E : S A N F R A N C I S C O O F F I C E U S I N G I K E
Interfaces
set interface eth0 zone trust
set interface eth0 ip 10.0.0.0/24
set interface nat
set interface eth1 zone untrust
set interface eth1 ip 4.4.4.1
Addresses
set address trust sf_local 10.0.0.0/24
set address untrust ny_destination 192.168.100.0/24
VPN
set ike p1 proposal encryptaesp1 preshare group5 esp
aes128 sha-1
set ike p2 proposal encryptaesp2 preshare group5 esp aes
128 sha-1 seconds 28800
set ike gateway to_newyork address 162.198.10.1 main
outgoing-interface eth1 preshare password proposal
encryptaesp1
set vpn sfo_nyo gateway to_newyork proposal encryptaesp2
Routing
set route trust route 0.0.0.0/0 interface eth1 gateway
4.4.4.254
Policies
set policy top name vpnto_newyork from trust to untrust
sf_local ny_destination and tunnel vpn sfo_nyo
set policy top name vpnfrom_newyork from untrust to
trust ny_destination sf_local any tunnel vpn sfo_nyo
Содержание freeGuard Blaze 2100
Страница 1: ...freeGuard Blaze 2100 User Guide Version 3R2...
Страница 14: ...I NT R O DU C T I O N About Document Conventions 1 4 Security Appliance User Guide Version 3R2 1...
Страница 24: ...G E T T IN G S T A R T E D Installing the freeGuard Blaze 2100 2 10 Security Appliance User Guide Version 3R2 2...
Страница 82: ...SY ST EM MA N AGEM E N T Using Traceroute 4 22 Security Appliance User Guide Version 3R2 4...
Страница 192: ...P OL IC Y CO NF I G URA T IO N About Schedules 9 28 Security Appliance User Guide Version 3R2 9...
Страница 216: ...P R E DEF I N E D SER V IC ES A 4 Security Appliance User Guide Version 3R2 A...